Meta fined €91 million for unintentionally storing passwords without protection

Spread the love


Certain social media users’ passwords were stored as “plain text” in internal systems without cryptographic protection or encryption.

On Friday, Ireland’s Data Protection Commission (DPC) fined Meta €91 million for unintentionally storing some users’ passwords without adequate protection or encryption. This was reported by Reuters and RTÉ.

The investigation began five years ago, in April 2019, when Meta notified the Irish DPC that some user passwords had been mistakenly stored as plain text in its internal systems without cryptographic protection or encryption.

The investigation revealed four violations of the EU’s General Data Protection Regulation (GDPR).

Meta publicly acknowledged the incident, stating that during a routine security review in 2019, it found that a subset of Facebook user passwords had been temporarily stored in readable format within its internal data systems.

The company took immediate action to fix the error after discovering it, and there was no evidence of password misuse. The DPC also confirmed that the passwords were not exposed to external parties.

In June, the DPC submitted its proposed fine to other European data protection authorities, and no objections were raised. The decision was then communicated to Meta.

EU’s Main Regulator

“It is generally accepted that user passwords should not be stored in plain text due to the risks of misuse,” said Graham Doyle, a DPC official in Ireland.

Meta cooperated constructively with the DPC throughout the investigation, a spokesperson said on Friday.

The DPC serves as the EU’s main regulator for most major U.S. internet companies, as many have chosen Ireland as their European headquarters.

To date, Meta has been fined a total of €2.5 billion in the EU for GDPR violations since the regulation was implemented in 2018, including a record €1.2 billion fine in 2023, which Meta has appealed.

Leave a Reply

Your email address will not be published. Required fields are marked *

TECH WORLD

European Commission Accuses TikTok of Violating Digital Services Act

Spread the love

Spread the loveEU watchdogs slapped TikTok with a precision strike on Thursday, warning that the Chinese-owned app was in breach of the budget transparency rules laid down in the Digital Services Act. The snap means the firm could face a heavy pecuniary painstick swipe. According to the from the Commish, TikTok had failed the transparency […]

Read More
TECH

Soviet Space Probe Crashes into Indian Ocean After 53 Years in Orbit

Spread the love

Spread the loveAfter more than five decades of the Earth, the Soviet spacecraft Cosmos 482 re entered the atmosphere and crashed into the Indian Ocean west of Jakarta, Indonesia. Originally launched in 1972, according to the Russian Space Agency Roscosmos reported by the DPA, re -entered the Earth’s atmosphere on the Cast 08:24 on Saturday. […]

Read More
TECH

Popular Subreddit “Am I The A**hole?” Is Being Turned Into a Reality Show

Spread the love

Spread the loveA beloved subredit is jumping from screen to stage – and in the real world. Reddit, one of the world’s most popular social platforms, is known for its wide range, called subredits. Each focuses on a specific subject, where members share stories, advice or opinion. One of the largest and most entertaining subredits […]

Read More